7.5
CVSSv2

CVE-2005-4741

Published: 31/12/2005 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

NetBSD 1.6, NetBSD 2.0 up to and including 2.1, and NetBSD-current prior to 20051031 allows local users to gain privileges by attaching a debugger to a setuid/setgid (P_SUGID) process that performs an exec without a reset of real credentials.

Vulnerable Product Search on Vulmon Subscribe to Product

netbsd netbsd 2.0

netbsd netbsd 2.0.1

netbsd netbsd 2.0.2

netbsd netbsd 2.0.3

netbsd netbsd 1.6

netbsd netbsd 1.6.2

netbsd netbsd 2.1

netbsd netbsd 1.6.1